Nave Security LLC - Cambridge, MA

posted 8 days ago

Full-time
Cambridge, MA

About the position

The AWS Cloud Penetration Tester at Nave Security LLC is responsible for executing penetration tests on various AWS cloud environments. This role focuses on identifying and exploiting vulnerabilities within AWS configurations, applications, and networks, ensuring the security of cloud-native applications and services.

Responsibilities

  • Execute penetration tests on AWS cloud environments, including EC2 instances, S3 buckets, Lambda functions, and other AWS services.
  • Identify and exploit vulnerabilities in AWS configurations, applications, and networks.
  • Assess the security of IAM roles and policies, focusing on privilege escalation risks.
  • Evaluate the security of containerized applications and Kubernetes deployments in AWS.
  • Conduct security assessments of CI/CD pipelines integrated with AWS services.
  • Perform web application security testing on cloud-native applications.

Requirements

  • 3+ years of experience in penetration testing, with a focus on AWS cloud environments.
  • In-depth knowledge of AWS services, architecture, and security best practices.
  • Experience with cloud-native security tools like CloudSploit, Prowler, or ScoutSuite.
  • Familiarity with container security and Kubernetes penetration testing.
  • Understanding of web application security and OWASP Top 10 vulnerabilities.
  • Relevant security certifications (e.g. AWS Cloud Practitioner, AWS Certified Security, PNPT, etc.) or equivalent experience.
  • Knowledge of compliance standards relevant to cloud security (e.g., CIS Benchmarks for AWS).
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service